imPC@ndo EN

Vulnerabilità Linux

14.775 CVE

CVE-2026-43011
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix potential double free of skb When alloc_skb fails in x25_queue_rx_frame it calls kfree_skb(skb) at line 48 and returns 1 (error). This error propagates back through the call cha…

linux linux_kernel
0.01EPSS
CVE-2025-21765
Alta 8.1

In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU protection in ip6_default_advmss() ip6_default_advmss() needs rcu protection to make sure the net structure it reads does not disappear.

linux linux_kernel
0.01EPSS
CVE-2024-53094
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Add sendpage_ok() check to disable MSG_SPLICE_PAGES While running ISER over SIW, the initiator machine encounters a warning from skb_splice_from_iter() indicating that a slab page …

linux linux_kernel
0.01EPSS
CVE-2024-27066
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: virtio: packed: fix unmap leak for indirect desc table When use_dma_api and premapped are true, then the do_unmap is false. Because the do_unmap is false, vring_unmap_extra_packed is not ca…

linux linux_kernel
0.01EPSS
CVE-2021-46948
Alta 7.5

In the Linux kernel, the following vulnerability has been resolved: sfc: farch: fix TX queue lookup in TX event handling We're starting from a TXQ label, not a TXQ type, so efx_channel_get_tx_queue() is inappropriate (and could return NULL, leading to pani…

linux linux_kernel
0.01EPSS
CVE-2024-26585
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: tls: fix race between tx work scheduling and socket close Similarly to previous commit, the submitting thread (recvmsg/sendmsg) may exit as soon as the async crypto handler calls complete().…

linux linux_kernel
0.01EPSS
CVE-2022-48985
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix race on per-CQ variable napi work_done After calling napi_complete_done(), the NAPIF_STATE_SCHED bit may be cleared, and another CPU can start napi thread and access per-CQ va…

linux linux_kernel
0.01EPSS
CVE-2023-52801
Alta 8.8

In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to…

linux linux_kernel
0.01EPSS
CVE-2024-23307
Media 4.4

Integer Overflow or Wraparound vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (md, raid, raid5 modules) allows Forced Integer Overflow.

linux linux_kernel
0.01EPSS
CVE-2023-3865
Alta 8.1

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand. If ->NextCommand is bigger than Offset + Length of smb2 write, It will allow oversized …

linux linux_kernel
0.01EPSS
CVE-2020-25670
Alta 7.8

A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-free which might lead to privilege escalations.

debian debian_linux · fedoraproject fedora · linux linux_kernel · netapp active_iq_unified_manager · e altri 10
0.01EPSS
CVE-2019-15239
Alta 7.8

In the Linux kernel, a certain net/ipv4/tcp_output.c change, which was properly incorporated into 4.16.12, was incorrectly backported to the earlier longterm kernels, introducing a new vulnerability that was potentially more severe than the issue that was inte…

debian debian_linux · linux linux_kernel
0.01EPSS
CVE-2019-13648
Media 5.5

In the Linux kernel through 5.2.1 on the powerpc platform, when hardware transactional memory is disabled, a local user can cause a denial of service (TM Bad Thing exception and system crash) via a sigreturn() system call that sends a crafted signal frame. Thi…

linux linux_kernel
0.01EPSS
CVE-2015-4036
Alta 7.2

Array index error in the tcm_vhost_make_tpg function in drivers/vhost/scsi.c in the Linux kernel before 4.0 might allow guest OS users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted VHOST_SCSI_SET_ENDPO…

linux linux_kernel
0.01EPSS
CVE-2014-7826
Alta 7.8

kernel/trace/trace_syscalls.c in the Linux kernel through 3.17.2 does not properly handle private syscall numbers during use of the ftrace subsystem, which allows local users to gain privileges or cause a denial of service (invalid pointer dereference) via a c…

linux linux_kernel · opensuse evergreen · suse suse_linux_enterprise_server
0.01EPSS
CVE-2013-4470
Media 6.9

The Linux kernel before 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly initialize certain data structures, which allows local users to cause a denial of service (memory corruption and system crash) or possibly gain privileges via a cr…

linux linux_kernel
0.01EPSS
CVE-2009-1961
Media 4.7

The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2.6.27 before 2.6.27.24, 2.6.29 before 2.6.29.4, and possibly other versions down to 2.6.19 allows local users to cause a denial of service (prevention of file creat…

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse opensuse · e altri 3
0.01EPSS
CVE-2020-11609
Media 4.3

An issue was discovered in the stv06xx subsystem in the Linux kernel before 5.6.1. drivers/media/usb/gspca/stv06xx/stv06xx.c and drivers/media/usb/gspca/stv06xx/stv06xx_pb0100.c mishandle invalid descriptors, as demonstrated by a NULL pointer dereference, aka …

canonical ubuntu_linux · linux linux_kernel
0.01EPSS
CVE-2016-5856
Alta 7.0

Drivers/soc/qcom/spcom.c in the Qualcomm SPCom driver in the Android kernel 2017-03-05 allows local users to gain privileges, a different vulnerability than CVE-2016-5857.

google android · linux linux_kernel
0.01EPSS
CVE-2014-3647
Media 5.5

arch/x86/kvm/emulate.c in the KVM subsystem in the Linux kernel through 3.17.2 does not properly perform RIP changes, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted application.

canonical ubuntu_linux · debian debian_linux · linux linux_kernel · opensuse evergreen · e altri 3
0.01EPSS
CVE-2025-38566
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix handling of server side tls alerts Scott Mayhew discovered a security exploit in NFS over TLS in tls_alert_recv() due to its assumption it can read data from the msg iterator's k…

linux linux_kernel
0.01EPSS
CVE-2022-48697
Critica 9.8

In the Linux kernel, the following vulnerability has been resolved: nvmet: fix a use-after-free Fix the following use-after-free complaint triggered by blktests nvme/004: BUG: KASAN: user-memory-access in blk_mq_complete_request_remote+0xac/0x350 Read of si…

linux linux_kernel
0.01EPSS
CVE-2023-31436
Alta 7.8

qfq_change_class in net/sched/sch_qfq.c in the Linux kernel before 6.2.13 allows an out-of-bounds write because lmax can exceed QFQ_MIN_LMAX.

linux linux_kernel
0.01EPSS
CVE-2013-4514
Media 4.7

Multiple buffer overflows in drivers/staging/wlags49_h2/wl_priv.c in the Linux kernel before 3.12 allow local users to cause a denial of service or possibly have unspecified other impact by leveraging the CAP_NET_ADMIN capability and providing a long station-n…

linux linux_kernel
0.01EPSS
CVE-2024-49571
Critica 9.1

In the Linux kernel, the following vulnerability has been resolved: net/smc: check iparea_offset and ipv6_prefixes_cnt when receiving proposal msg When receiving proposal msg in server, the field iparea_offset and the field ipv6_prefixes_cnt in proposal msg …

linux linux_kernel
0.01EPSS